Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
This package has been deprecated with the following message: Strapi V3 is no longer maintained
Generated on May 2, 2024 via pnpm

strapi 3.6.11

An open source headless CMS solution to create and manage your own API. It provides a powerful dashboard and features to make your life easier. Databases supported: MongoDB, MySQL, MariaDB, PostgreSQL, SQLite
Package summary
Share
49
issues
3
critical severity
vulnerability
2
license
1
31
high severity
vulnerability
3
license
12
meta
16
4
moderate severity
vulnerability
4
11
low severity
license
11
10
licenses
320
MIT
35
ISC
11
BSD-3-Clause
19
other licenses
SEE LICENSE IN LICENSE
11
BSD-2-Clause
3
N/A
1
(BSD-2-Clause OR MIT OR Apache-2.0)
1
+ 3 more
Package created
24 Jun 2013
Version published
22 Nov 2022
Maintainers
8
Total deps
385
Direct deps
53
License
SEE LICENSE IN LICENSE

Issues

49

3 critical severity issues

critical
Recommendation: None
via: strapi@3.6.11
Recommendation: None
via: strapi@3.6.11
Recommendation: Check the package code and files for license information
via: koa@2.15.3
Collapse
Expand

31 high severity issues

high
Recommendation: Upgrade to version 2.6.7 or later
via: node-fetch@2.6.1 & others
Recommendation: Upgrade to version 5.0.0 or later
via: @koa/cors@3.4.3
Recommendation: None
via: boom@7.3.0
Recommendation: Validate that the package complies with your license policy
via: strapi-database@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-api@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-controller@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-model@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-new@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-plugin@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-policy@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate-service@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-generate@3.6.11
Recommendation: Validate that the package complies with your license policy
via: strapi-database@3.6.11 & others
Recommendation: Validate that the package complies with your license policy
via: strapi@3.6.11
Recommendation: Validate that the license expression complies with your license policy
via: package-json@7.0.0 & others
via: boom@7.3.0
via: koa-body@4.2.0
via: boom@7.3.0
via: strapi-database@3.6.11
via: strapi-generate-api@3.6.11
via: strapi-generate-controller@3.6.11
via: strapi-generate-model@3.6.11
via: strapi-generate-new@3.6.11
via: strapi-generate-plugin@3.6.11
via: strapi-generate-policy@3.6.11
via: strapi-generate-service@3.6.11
via: strapi-generate@3.6.11
via: strapi-database@3.6.11 & others
via: strapi@3.6.11
via: strapi@3.6.11
via: strapi-generate-new@3.6.11
Collapse
Expand

4 moderate severity issues

moderate
Recommendation: Upgrade to version 4.1.0 or later
via: strapi@3.6.11
Recommendation: Upgrade to version 4.1.0 or later
via: strapi@3.6.11
Recommendation: Upgrade to version 7.5.2 or later
via: package-json@7.0.0 & others
Recommendation: Upgrade to version 6.2.1 or later
via: strapi-generate-new@3.6.11
Collapse
Expand

11 low severity issues

low
Recommendation: Read and validate the license terms
via: strapi-database@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-api@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-controller@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-model@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-new@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-plugin@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-policy@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate-service@3.6.11
Recommendation: Read and validate the license terms
via: strapi-generate@3.6.11
Recommendation: Read and validate the license terms
via: strapi-database@3.6.11 & others
Recommendation: Read and validate the license terms
via: strapi@3.6.11
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
320 Packages, Including:
@babel/runtime@7.24.5
@colors/colors@1.5.0
@koa/cors@3.4.3
@sailshq/lodash@3.10.6
@sentry/tracing@6.3.0
@sindresorhus/is@4.6.0
@sindresorhus/slugify@1.1.0
@sindresorhus/transliterate@0.1.2
@szmarczak/http-timer@4.0.6
@types/cacheable-request@6.0.3
@types/formidable@1.2.8
@types/http-cache-semantics@4.0.4
@types/keyv@3.1.4
@types/lodash@4.17.0
@types/node@20.12.8
@types/responselike@1.0.3
accepts@1.3.8
agent-base@6.0.2
aggregate-error@3.1.0
ansi-escapes@3.2.0
ansi-regex@3.0.1
ansi-regex@4.1.1
ansi-regex@5.0.1
ansi-styles@3.2.1
ansi-styles@4.3.0
any-promise@1.3.0
assert-plus@1.0.0
async@2.6.4
balanced-match@1.0.2
base64-js@1.5.1
binary-extensions@2.3.0
bl@4.1.0
boxen@4.2.0
brace-expansion@1.1.11
braces@3.0.2
buffer@5.7.1
bytes@3.1.2
cache-content-type@1.0.1
cacheable-lookup@5.0.4
cacheable-request@7.0.4
call-bind@1.0.7
camelcase@5.3.1
captains-log@2.0.5
chalk@2.3.0
chalk@2.4.2
chalk@3.0.0
chalk@4.1.2
chardet@0.7.0
chokidar@3.5.1
ci-info@3.1.1

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
35 Packages, Including:
ansi-align@3.0.1
anymatch@3.1.3
at-least-node@1.0.0
chownr@2.0.0
cli-width@2.2.1
fs-minipass@2.1.0
fs.realpath@1.0.0
glob-parent@5.1.2
glob@7.2.3
graceful-fs@4.2.11
inflight@1.0.6
inherits@2.0.3
inherits@2.0.4
ini@1.3.8
isexe@2.0.0
lru-cache@6.0.0
minimatch@3.1.2
minipass@3.3.6
mute-stream@0.0.7
once@1.4.0
rimraf@3.0.2
semver@5.7.2
semver@6.3.1
semver@7.3.5
semver@7.5.2
setprototypeof@1.1.0
setprototypeof@1.2.0
signal-exit@3.0.7
split2@2.2.0
tar@6.1.9
which@1.3.1
which@2.0.2
wrappy@1.0.2
write-file-atomic@3.0.3
yallist@4.0.0

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
@sentry/core@6.3.0
@sentry/hub@6.3.0
@sentry/minimal@6.3.0
@sentry/node@6.3.0
@sentry/types@6.3.0
@sentry/utils@6.3.0
boom@7.3.0
hoek@6.1.3
ieee754@1.2.1
qs@6.12.1
sprintf-js@1.1.3

SEE LICENSE IN LICENSE

Invalid
Not OSI Approved
11 Packages, Including:
strapi-database@3.6.11
strapi-generate-api@3.6.11
strapi-generate-controller@3.6.11
strapi-generate-model@3.6.11
strapi-generate-new@3.6.11
strapi-generate-plugin@3.6.11
strapi-generate-policy@3.6.11
strapi-generate-service@3.6.11
strapi-generate@3.6.11
strapi-utils@3.6.11
strapi@3.6.11

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
configstore@5.0.1
dotenv@8.2.0
http-cache-semantics@4.1.1

N/A

N/A
1 Packages, Including:
only@0.0.2

(BSD-2-Clause OR MIT OR Apache-2.0)

Expression
1 Packages, Including:
rc@1.2.8

Apache License 2.0

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
use-patent-claims
place-warranty
Cannot
hold-liable
use-trademark
Must
include-copyright
include-license
state-changes
include-notice
1 Packages, Including:
rxjs@6.6.7

BSD Zero Clause License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
include-copyright
include-license
include-original
Cannot
hold-liable
Must
1 Packages, Including:
tslib@1.14.1

(MIT OR CC0-1.0)

Public Domain
1 Packages, Including:
type-fest@0.8.1
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

53
All Dependencies CSV
β“˜ This is a list of strapi 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
@koa/cors3.4.35.68 kBMIT
prod
1
async2.6.4120.04 kBMIT
prod
boom7.3.08.41 kBBSD-3-Clause
prod
3
boxen4.2.04.44 kBMIT
prod
chalk4.1.211.31 kBMIT
prod
chokidar3.5.125.59 kBMIT
prod
ci-info3.1.15.62 kBMIT
prod
cli-table30.6.444.9 kBMIT
prod
commander6.1.029.43 kBMIT
prod
configstore5.0.13.32 kBBSD-2-Clause
prod
cross-spawn7.0.37.3 kBMIT
prod
debug4.3.412.94 kBMIT
prod
delegates1.0.02.78 kBMIT
prod
dotenv8.2.08.66 kBBSD-2-Clause
prod
execa1.0.06.83 kBMIT
prod
fs-extra9.1.032.88 kBMIT
prod
glob7.2.315.08 kBISC
prod
inquirer6.5.220.34 kBMIT
prod
is-docker2.2.11.65 kBMIT
prod
koa-body4.2.07.26 kBMIT
prod
1
koa-compose4.1.01.77 kBMIT
prod
koa-compress5.1.14.98 kBMIT
prod
koa-convert2.0.03.4 kBMIT
prod
koa-favicon2.1.01.5 kBMIT
prod
koa-i18n2.1.03.41 kBMIT
prod
koa-ip2.1.32.48 kBMIT
prod
koa-locale1.3.02.51 kBMIT
prod
koa-lusca2.2.06.7 kBMIT
prod
koa-router7.4.011.27 kBMIT
prod
koa-session6.4.011.56 kBMIT
prod
koa-static5.0.02.95 kBMIT
prod
koa2.15.394.29 kBMIT
prod
1
lodash4.17.21311.49 kBMIT
prod
node-fetch2.6.142.64 kBMIT
prod
1
node-machine-id1.1.1212.76 kBMIT
prod
node-schedule1.3.214.74 kBMIT
prod
opn5.5.09.27 kBMIT
prod
ora5.4.16.74 kBMIT
prod
package-json7.0.04.39 kBMIT
prod
1
1
qs6.12.1241.26 kBBSD-3-Clause
prod
resolve-cwd3.0.01.91 kBMIT
prod
rimraf3.0.26.33 kBISC
prod
semver7.3.525.68 kBISC
prod
1
strapi-database3.6.118.18 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-api3.6.114.02 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-controller3.6.112.6 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-model3.6.113.44 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-new3.6.1117.58 kBSEE LICENSE IN LICENSE
prod
4
1
1
strapi-generate-plugin3.6.116.04 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-policy3.6.112.51 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate-service3.6.112.71 kBSEE LICENSE IN LICENSE
prod
4
2
strapi-generate3.6.117.67 kBSEE LICENSE IN LICENSE
prod
5
2
strapi-utils3.6.1118.18 kBSEE LICENSE IN LICENSE
prod
2
1

Visualizations